CVE-2019-15890: Libslirp Project Libslirp
High severity, CVSS 7.5. EPSS: 4% chance of exploitation in the next 30 days.
libslirp 4.0.0, as used in QEMU 4.1.0, has a use-after-free in ip_reass in ip_input.c.
Affected products
- Libslirp Project Libslirp: version 4.0.0 only
- Qemu Qemu: version 4.1.0 only
Published 2019-09-06. Last modified 2026-06-17.